Product SiteDocumentation Site

Red Hat Certificate System 8.1

Agents Guide

Using Web-Based Agent Services

Edition 1

Ella Deon Lackey


Legal Notice

Copyright © 2012 Red Hat, Inc..
The text of and illustrations in this document are licensed by Red Hat under a Creative Commons Attribution–Share Alike 3.0 Unported license ("CC-BY-SA"). An explanation of CC-BY-SA is available at http://creativecommons.org/licenses/by-sa/3.0/. In accordance with CC-BY-SA, if you distribute this document or an adaptation of it, you must provide the URL for the original version.
Red Hat, as the licensor of this document, waives the right to enforce, and agrees not to assert, Section 4d of CC-BY-SA to the fullest extent permitted by applicable law.
Red Hat, Red Hat Enterprise Linux, the Shadowman logo, JBoss, MetaMatrix, Fedora, the Infinity Logo, and RHCE are trademarks of Red Hat, Inc., registered in the United States and other countries.
Linux® is the registered trademark of Linus Torvalds in the United States and other countries.
Java® is a registered trademark of Oracle and/or its affiliates.
XFS® is a trademark of Silicon Graphics International Corp. or its subsidiaries in the United States and/or other countries.
MySQL® is a registered trademark of MySQL AB in the United States, the European Union and other countries.
All other trademarks are the property of their respective owners.


1801 Varsity Drive
RaleighNC 27606-2072 USA
Phone: +1 919 754 3700
Phone: 888 733 4281
Fax: +1 919 754 3701

January 31, 2012
Abstract
for agents to manage certificate requests and other operations

About This Guide
1. Required Concepts
2. What Is in This Guide
3. Examples and Formatting
3.1. Formatting for Examples and Commands
3.2. Tool Locations
3.3. Guide Formatting
4. Additional Reading
5. Giving Feedback
6. Document History
1. Agent Services
1.1. Overview of Certificate System
1.1.1. Certificate System Subsystems
1.1.2. Certificate System Users
1.2. Agent Tasks
1.2.1. Certificate Manager Agent Services
1.2.2. Registration Manager Agent Services
1.2.3. Data Recovery Manager Agent Services
1.2.4. Online Certificate Status Manager Agent Services
1.2.5. Token Processing System Agent Services
1.3. Accessing Agent Services
1.4. Using and Recovering Agent Certificates
1.5. Using Java Servlets with Subsystem Web Forms
1.6. Supported Web Browsers
1.7. Supported Character Sets
1.8. Configuring Internet Explorer to Enroll Certificates
2. CA: Working with Certificate Profiles
2.1. About Certificate Profiles
2.2. Example caUserCert Profile
2.3. List of Certificate Profiles
2.4. Enabling and Disabling Certificate Profiles
2.4.1. Viewing Certificate Profile Information
2.4.2. Enabling or Disabling a Certificate Profile
3. CA: Handling Certificate Requests
3.1. Managing Requests
3.2. Listing Certificate Requests
3.2.1. Selecting a Request
3.2.2. Searching for Certificates (Advanced)
3.3. Approving Requests
3.4. Sending an Issued Certificate to the Requester
4. CA: Finding and Revoking Certificates
4.1. Listing Certificates
4.2. Searching for Certificates (Advanced)
4.3. Examining Certificate Details
4.4. Revoking Certificates
4.4.1. Revoking Certificates
4.4.2. Taking Ceritificates Off Hold
4.5. Managing the Certificate Revocation List
4.5.1. Viewing or Examining CRLs
4.5.2. Updating the CRL
5. CA: Publishing to a Directory
5.1. Automatically Updating the Directory
5.2. Manually Updating the Directory
6. RA: Requesting and Receiving Certificates Locally
6.1. Listing Certificate Requests
6.2. Approving Certificate Requests
6.3. Listing Certificates
6.4. Revoking Certificates
6.5. Creating and Managing Users and Groups for an RA
6.5.1. Managing RA Groups
6.5.2. Managing RA Users
7. DRM: Recovering Encrypted Data
7.1. Listing Requests
7.2. Finding Archived Keys
7.3. Recovering Keys
7.3.1. Recovering Keys: Asynchronous Recovery
7.3.2. Recovering Keys: Synchronous Recovery
8. Online Certificate Status Manager: Verifying Certificate Status
8.1. Listing CAs Identified by the Online Certificate Status Manager
8.2. Identifying a CA to the Online Certificate Status Manager
8.3. Removing a CA from the OCSP Manager
8.4. Adding a CRL to the Online Certificate Status Manager
8.5. Checking the Revocation Status of a Certificate
8.6. OCSP Responder Summary
9. TPS: Managing Token and Smart Card Operations
9.1. Overview of TPS Roles
9.2. Performing Operator Tasks
9.2.1. Searching Tokens
9.2.2. Viewing Tokens
9.2.3. Searching Certificates
9.2.4. Searching Activities
9.3. Performing Agent Tasks
9.3.1. Searching Tokens
9.3.2. Viewing Tokens
9.3.3. Managing Tokens
9.3.4. Searching Certificates
9.3.5. Searching Activities
9.3.6. Enabling and Disabling Profiles
9.4. Performing Administrator Tasks
9.4.1. Managing Tokens
9.4.2. Managing TPS Users
9.4.3. Searching Activities
9.4.4. Running Self-Tests
9.4.5. Managing the TPS Audit Logs
9.4.6. Managing TPS Server Configuration
9.5. Conflicting Token Certificate Status Information
Index